NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59622  CVE-2006-0893  NOCC Webmail 1.0 allows remote attackers to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mail addresses contained in filenames of profiles, and (2) the tmp directory, which lists names of uploaded attachments.    Medium  2016-12-20  2008-09-05  View
59878  CVE-2006-1156  SQL injection vulnerability in manas tungare Site Membership Script before 8 March, 2006 allows remote attackers to execute arbitrary SQL commands via the Username parameter in login.asp.    Medium  2016-12-20  2011-03-07  View
60134  CVE-2006-1425  Cross-site scripting (XSS) vulnerability in track.php in phpmyfamily 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the name parameter.    4.3  Medium  2016-12-20  2016-10-17  View
60390  CVE-2006-1685  Multiple SQL injection vulnerabilities in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allow remote attackers to execute arbitrary SQL commands via the (1) group, (2) seite, and (3) id parameter, possibly involving the artikel functionality. NOTE: this vulnerability also allows resultant path disclosure when the SQL queries are invalid.    7.5  High  2016-12-20  2011-03-07  View
60646  CVE-2006-1941  Neon Responder 5.4 for LANsurveyor allows remote attackers to cause a denial of service (application outage) via a crafted Clock Synchronisation packet that triggers an access violation.    Medium  2016-12-20  2011-03-07  View

Page 1352 of 17672, showing 5 records out of 88360 total, starting on record 6756, ending on 6760

Actions